byyaklang· 59 skills
HTTP Host header injection and routing abuse playbook. Use when the application trusts the Host header for generating URLs, routing requests, or access control — enabling password reset poisoning, web cache poisoning, SSRF via routing, and virtual host bypass.
$npx -y skills add yaklang/hack-skills --skill http-host-header-attacksInstalls into the current project.
Run `npx skills use "https://github.com/yaklang/hack-skills" --skill "yaklang/hack-skills/http-host-header-attacks"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/yaklang/hack-skills" that are relevant to the current task. Run `npx skills add "https://github.com/yaklang/hack-skills"` and select the relevant skills, then follow their instructions.